瑞星卡卡安全论坛技术交流区系统软件 【求助】SREng的相关问题...【紧急.再现等】

1   1  /  1  页   跳转

【求助】SREng的相关问题...【紧急.再现等】

【求助】SREng的相关问题...【紧急.再现等】

昨天用SREng.EXE删除了一些浏览器加载项.
结果今天QQ登陆后.出现了连续掉线的情况.基本上登陆后10几秒就自动吊线了
希望各位高手帮忙下.
前面先放用SREng.EXE扫描的日志.

______________________________________
2007-05-09,17:21:47

System Repair Engineer 2.4.12.806
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional Service Pack 2 (Build 2600) - 管理权限用户 - 完整功能

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联
    Winsock 提供者
    Autorun.inf
    HOSTS 文件


启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <load><>  [N/A]
    <run><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <runeip><D:\Program Files\Rising\AntiSpyware\runiep.exe>  [Beijing Rising Technology Co., Ltd.]
    <NvCplDaemon><; RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <kis><"D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe">  [Kaspersky Lab]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Windows Publisher]
    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [(Verified)Microsoft Windows Publisher]

==================================
启动文件夹
N/A

==================================
服务
[Adobe LM Service / Adobe LM Service][Stopped/Manual Start]
  <"C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe"><Adobe Systems>
[卡巴斯基互联网安全套装 6.0 / AVP][Running/Auto Start]
  <"D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe" -r><Kaspersky Lab>
[Human Interface Device Access / HidServ][Stopped/Disabled]
  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[HWTabletService / HWTabletService][Running/Auto Start]
  <C:\WINDOWS\system32\HWPad.exe><HanWang Technology Group>

最后编辑2007-05-10 20:34:14
分享到:
gototop
 

==================================
驱动程序
[Service for WDM 3D Audio Driver / ALCXSENS][Running/Manual Start]
  <system32\drivers\ALCXSENS.SYS><Sensaura>
[Service for Realtek AC97 Audio (WDM) / ALCXWDM][Running/Manual Start]
  <system32\drivers\ALCXWDM.SYS><Realtek Semiconductor Corp.>
[Conexant AccessRunner USB ADSL Adapter Filter Driver / CnxEtP][Running/Manual Start]
  <system32\DRIVERS\CnxEtP.sys><Conexant Systems, Inc.>
[Conexant AccessRunner USB ADSL Interface Device Driver / CnxEtU][Running/Manual Start]
  <system32\DRIVERS\CnxEtU.sys><Conexant Systems, Inc.>
[Conexant AccessRunner ADSL LAN Adapter Driver / CnxTgNL][Stopped/Manual Start]
  <system32\DRIVERS\CnxTgNL.sys><Conexant Systems, Inc.>
[Conexant AccessRunner ADSL WAN PPPoE Adapter Driver / CnxTgNP][Running/Manual Start]
  <system32\DRIVERS\CnxTgNP.sys><Conexant Systems, Inc.>
[VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver / FETNDIS][Running/Manual Start]
  <system32\DRIVERS\fetnd5.sys><VIA Technologies, Inc.>
[HanWang Pen / HWPen][Running/Boot Start]
  <\SystemRoot\System32\Drivers\HWTablet.sys><HanWang Technology>
[kl1 / kl1][Running/Boot Start]
  <\SystemRoot\system32\drivers\kl1.sys><Kaspersky Lab>
[klif / klif][Running/System Start]
  <\??\C:\WINDOWS\system32\drivers\klif.sys><Kaspersky Lab>
[lakfqfj / lakfqfj][Running/Boot Start]
  <\SystemRoot\\SystemRoot\System32\drivers\lakfqfj.sys><N/A>
[npkcrypt / npkcrypt][Running/Auto Start]
  <\??\D:\Program Files\Tencent\QQ\npkcrypt.sys><INCA Internet Co., Ltd.>
[nv / nv][Running/Manual Start]
  <system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
[Motorola USB Device / P2k][Stopped/Manual Start]
  <system32\DRIVERS\P2k.sys><Motorola Inc>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[RsAntiSpyware / RsAntiSpyware][Running/Boot Start]
  <\SystemRoot\system32\drivers\RsBoot.sys><Beijing Rising>
[Secdrv / Secdrv][Stopped/Manual Start]
  <system32\DRIVERS\secdrv.sys><N/A>
[sptd / sptd][Running/Boot Start]
  <\SystemRoot\System32\Drivers\sptd.sys><N/A>
[Motorola USB Modem Driver for MPT / usbsermpt][Stopped/Manual Start]
  <system32\DRIVERS\usbsermpt.sys><Microsoft Corporation>
[ViaIde / ViaIde][Running/Boot Start]
  <\SystemRoot\system32\DRIVERS\viaide.sys><Microsoft Corporation>
[World Standard Teletext Codec / WSTCODEC][Stopped/Manual Start]
  <system32\DRIVERS\WSTCODEC.SYS><Microsoft Corporation>
[VIMICRO USB PC Camera (ZC0301PLH) / ZSMC303][Running/Manual Start]
  <System32\Drivers\usbVM303.sys><Vimicro Corporation>

==================================
浏览器加载项
[启动Web迅雷]
  {962EFB8E-2683-42d4-AC74-AAA4C759B9C6} <http://my.xunlei.com, N/A>
[QQ]
  {c95fe080-8f5d-11d2-a20b-00aa003c157b} <d:\Program Files\Tencent\QQ\QQ.EXE, TENCENT>
[HTML Document]
  {25336920-03F9-11CF-8FD0-00AA00686F13} <C:\WINDOWS\system32\mshtml.dll, Microsoft Corporation>
[XML DOM Document]
  {2933BF90-7B36-11D2-B20E-00C04F983E60} <C:\WINDOWS\system32\msxml3.dll, Microsoft Corporation>
[HtmlDlgSafeHelper Class]
  {3050F819-98B5-11CF-BB82-00AA00BDCE0B} <C:\WINDOWS\system32\mshtmled.dll, Microsoft Corporation>
[XML Document]
  {48123BC4-99D9-11D1-A6B3-00C04FD91555} <C:\WINDOWS\system32\msxml3.dll, Microsoft Corporation>
[HHCtrl Object]
  {52A2AAAE-085D-4187-97EA-8C30DB990436} <C:\WINDOWS\system32\hhctrl.ocx, Microsoft Corporation>
[XML Data Source Object]
  {550DDA30-0541-11D2-9CA9-0060B0EC3D39} <C:\WINDOWS\system32\msxml3.dll, Microsoft Corporation>
[Windows Media Player]
  {6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[RealPlayer G2 Control]
  {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} <C:\WINDOWS\system32\rmoc3260.dll, RealNetworks, Inc.>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx, Adobe Systems, Inc.>
[XML HTTP Request]
  {ED8C108E-4349-11D2-91A4-00C04F7969E8} <C:\WINDOWS\system32\msxml3.dll, Microsoft Corporation>
[XML DOM Document 3.0]
  {F5078F32-C551-11D3-89B9-0000F81FE221} <C:\WINDOWS\system32\msxml3.dll, Microsoft Corporation>
[XML DOM Document]
  {F6D90F11-9C73-11D3-B32E-00C04F990BB4} <C:\WINDOWS\system32\msxml3.dll, Microsoft Corporation>
[XML HTTP]
  {F6D90F16-9C73-11D3-B32E-00C04F990BB4} <C:\WINDOWS\system32\msxml3.dll, Microsoft Corporation>
[上传到QQ网络硬盘]
  <D:\Program Files\Tencent\QQ\AddToNetDisk.htm, N/A>
[使用Web迅雷下载]
  <d:\Program Files\Thunder Network\WebThunder\GetUrl.htm, N/A>
[使用Web迅雷下载全部链接]
  <d:\Program Files\Thunder Network\WebThunder\GetAllUrl.htm, N/A>
[添加到QQ自定义面板]
  <D:\Program Files\Tencent\QQ\AddPanel.htm, N/A>
[添加到QQ表情]
  <D:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
  <D:\Program Files\Tencent\QQ\SendMMS.htm, N/A>
gototop
 

=================================
正在运行的进程
[PID: 668][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 756][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1484][C:\WINDOWS\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\hwanghk.dll]  [HWang Technology, Corp., 4.56-6]
    [D:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
    [D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll]  [Kaspersky Lab, 6.0.0.299]
    [C:\Program Files\WinRAR\rarext.dll]  [N/A, ]
    [D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\shellex.dll]  [Kaspersky Lab, 6.0.0.299]
[PID: 344][D:\Program Files\Rising\AntiSpyware\runiep.exe]  [Beijing Rising Technology Co., Ltd., 1, 0, 1, 6]
    [D:\Program Files\Rising\AntiSpyware\iep_ctrl.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 4]
    [D:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
    [C:\WINDOWS\system32\hwanghk.dll]  [HWang Technology, Corp., 4.56-6]
[PID: 392][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\hwanghk.dll]  [HWang Technology, Corp., 4.56-6]
    [D:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
[PID: 2616][C:\Program Files\Internet Explorer\iexplore.exe]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [C:\WINDOWS\system32\hwanghk.dll]  [HWang Technology, Corp., 4.56-6]
    [D:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
    [D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll]  [Kaspersky Lab, 6.0.0.299]
    [D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\scr_ch_pg.dll]  [Kaspersky Lab, 1.0.6.299]
    [D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\klscav.dll]  [Kaspersky Lab, 6.0.0.299]
    [D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\pr_remote.dll]  [Kaspersky Lab, 6.0.0.299]
    [D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prloader.dll]  [Kaspersky Lab, 6.0.0.299]
    [D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prkernel.ppl]  [Kaspersky Lab, 6.0.0.304]
    [d:\program files\kaspersky lab\kaspersky internet security 6.0\params.ppl]  [Kaspersky Lab, 6.0.0.299]
    [d:\program files\kaspersky lab\kaspersky internet security 6.0\pxstub.ppl]  [Kaspersky Lab, 6.0.0.299]
    [d:\program files\kaspersky lab\kaspersky internet security 6.0\tempfile.ppl]  [Kaspersky Lab, 6.0.0.299]
    [d:\program files\kaspersky lab\kaspersky internet security 6.0\nfio.ppl]  [Kaspersky Lab, 6.0.0.299]
    [d:\program files\kaspersky lab\kaspersky internet security 6.0\fsdrvplgn.ppl]  [Kaspersky Lab, 6.0.0.299]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx]  [Adobe Systems, Inc., 9,0,28,0]
[PID: 736][C:\Program Files\Internet Explorer\iexplore.exe]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [C:\WINDOWS\system32\hwanghk.dll]  [HWang Technology, Corp., 4.56-6]
    [D:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
    [D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll]  [Kaspersky Lab, 6.0.0.299]
    [D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\scr_ch_pg.dll]  [Kaspersky Lab, 1.0.6.299]
    [C:\WINDOWS\system32\hwanghk.dll]  [HWang Technology, Corp., 4.56-6]
    [D:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
    [d:\Program Files\Tencent\QQ\TIMProxy.dll]  [tencent, 0, 3, 2, 4]
[PID: 2240][C:\WINDOWS\system32\notepad.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\hwanghk.dll]  [HWang Technology, Corp., 4.56-6]
    [D:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
[PID: 1760][C:\DOCUME~1\ADMINI~1.F70\LOCALS~1\Temp\Rar$EX00.922\SREng.EXE]  [Smallfrogs Studio, 2.4.12.806]
    [C:\WINDOWS\system32\hwanghk.dll]  [HWang Technology, Corp., 4.56-6]
    [D:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
    [D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll]  [Kaspersky Lab, 6.0.0.299]

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\system32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1      localhost

==================================
API HOOK
RVA  错误: LoadLibraryA (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xF7A90B25)
RVA  错误: LoadLibraryExA (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xF7A90D67)
RVA  错误: LoadLibraryExW (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xF7A90F0B)
RVA  错误: LoadLibraryW (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xF7A90C49)
RVA  错误: GetProcAddress (危险等级: 高,  被下面模块所HOOK: Dest Addr: 0xF7A90E8F)

==================================
隐藏进程
N/A
gototop
 

日志发完了
下面是QQ的错误报告.
Microsoft Windows XP Service Pack 2 [Build 5.1.2600]

QQ 16.31.175  SP0 KB6 734021742F9DE5A1077E7FC36D1E4A93
-----------------------------------
Type: EXCEPTION_ACCESS_VIOLATION
Address: 0x77BFB929
Error: Read address 0x00000000

Call stack:
0x77BE0000[1B929] msvcrt.dll: (3743396,0,-1,2009056263)
0x77BE0000[1C320] msvcrt.dll: (128,1243052,2009056302,128)
0x77BE0000[1C3E7] msvcrt.dll: (128,0,128,1621178436)
0x77BE0000[1C42E] msvcrt.dll: (128,0,51802176,1243124)
0X60A10000[3844] MFC42.DLL: (128,32,128,51801304)
0X60090000[E894] BasicCtrlDll.dll: (54836064,4,360446375,1243176)
0X60090000[E193] BasicCtrlDll.dll: (51802208,54836064,360446375,51801300)
0X00400000[88DB2] QQ.exe: (51802208,54836064,360446375,51801304)
0X00400000[889AE] QQ.exe: (51802208,54836064,51801300,51801304)
0X00400000[88853] QQ.exe: (51801308,51801200,0,4746429)
0X00400000[94941] QQ.exe: (51699136,1243504,54334104,1611216223)
0X00400000[86CBD] QQ.exe: (51801200,51782108,829,1243444)
0X00400000[43E64] QQ.exe: (1243504,1243779,51616976,54335336)
0X00400000[44872] QQ.exe: (848,51783820,1243779,51616976)
0X00400000[44F6C] QQ.exe: (848,51783820,1243779,51616976)
0X00400000[4777E] QQ.exe: (848,51783820,1243779,51616976)
0X00400000[476F0] QQ.exe: (848,51783820,1243779,51616976)
0X00400000[47BFD] QQ.exe: (54335476,848,51783820,1243779)
0X00400000[3E2CA] QQ.exe: (0,848,51783820,51616708)
0X00400000[3E163] QQ.exe: (51784780,1243936,5256096,-1)
0X00400000[3E8F3] QQ.exe: (51783820,958,51790492,1243948)
0X00400000[3E92E] QQ.exe: (0,958,51791484,51616764)
0X00400000[416F6] QQ.exe: (0,958,51791484,1244012)
0X00400000[4166E] QQ.exe: (0,958,51791484,51612480)
0X00400000[418BD] QQ.exe: (51616764,0,958,51791484)
0X00400000[5A39D] QQ.exe: (1244132,5269796,-1,1244144)
0X00400000[5A340] QQ.exe: (0,958,51791484,51612876)
0X00400000[5A7A5] QQ.exe: (0,1244216,4566995,0)
0X00400000[C8DA8] QQ.exe: (0,0,51612784,0)
0X00400000[5AFD3] QQ.exe: (0,51612512,1244168,1244408)
0X71A20000[453B] WS2_32.dll: (0,0,51612784,1244260)
0X00400000[5AF53] QQ.exe: (0,1421832,51801504,1421936)
0X60A10000[19F9D] MFC42.DLL: (1524,958,1,1621270129)
0X60A10000[19EF6] MFC42.DLL: (1621171925,1524,1,11967504)
0X60A10000[19E88] MFC42.DLL: (1524,1,11967504,11967504)
0X60A10000[1ED5] MFC42.DLL: (23528375,0,1,1244532)
0X01730000[1C6B] ieprot.dll: (0,1,1244532,196609)
0X77D10000[218E3] USER32.dll: (883,1524,1621805224,1244448)
0X60A10000[1CEA] MFC42.DLL: (883,1524,1,1244724)
0X60A10000[1C73] MFC42.DLL: (9,1244724,1621171073,1398744)
0X60A10000[1018] MFC42.DLL: (0,1639116,883,1524)
0X60A10000[1BFB] MFC42.DLL: (1639116,883,1524,1)
0X60A10000[1BBA] MFC42.DLL: (1639116,883,1524,1)
0X77D10000[8734] USER32.dll: (1621171073,1639116,883,1524)
0X77D10000[8816] USER32.dll: (0,1621171073,1639116,883)
0X77D10000[89CD] USER32.dll: (5748300,1,5748300,1621168590)
0X77D10000[96C7] USER32.dll: (5748300,0,5748248,1621201316)
0X60A10000[11CE] MFC42.DLL: (5748248,5748248,1245120,-1)
0X60A10000[91A4] MFC42.DLL: (5748248,1621210366,3276850,1385269)
0X60A10000[9154] MFC42.DLL: (3276850,1385269,0,5230459)

gototop
 


Modules:
-----------------------------------
[ 0x00380000 ] C:\WINDOWS\system32\Normaliz.dll [6.0.5441.0,2006-06-29 23:05:42]
[ 0x00400000 ] D:\Program Files\Tencent\QQ\QQ.exe [0.0.0.0,2007-02-02 18:59:37]
[ 0x00BF0000 ] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll [6.0.2900.2982,2006-08-25 23:49:41]
[ 0x01730000 ] D:\Program Files\Rising\AntiSpyware\ieprot.dll [1.0.0.10,2007-03-22 16:38:55]
[ 0x01C80000 ] D:\Program Files\Tencent\QQ\LoginCtrl.dll [,2007-04-19 14:59:51]
[ 0x01CC0000 ] C:\WINDOWS\system32\Secur32.dll [5.1.2600.2180,2004-08-17 07:38:35]
[ 0x01F00000 ] D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll [6.0.0.299,2006-03-24 23:04:56]
[ 0x01F40000 ] D:\Program Files\Tencent\QQ\QQRes.dll [1.0.0.1,2007-02-03 15:09:19]
[ 0x02360000 ] C:\WINDOWS\system32\urlmon.dll [7.0.6000.16414,2007-01-13 01:27:40]
[ 0x05330000 ] D:\Program Files\Tencent\QQ\QQSysMsgMng.dll [,2007-02-03 15:08:53]
[ 0x0FFD0000 ] C:\WINDOWS\system32\rsaenh.dll [5.1.2600.2161,2004-07-07 10:17:12]
[ 0x10000000 ] C:\WINDOWS\system32\hwanghk.dll [4.5.6.6,2000-11-30 08:54:10]
[ 0x20000000 ] C:\WINDOWS\system32\xpsp2res.dll [5.1.2600.2180,2004-08-17 07:40:46]
[ 0x30000000 ] C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx [9.0.28.0,2006-11-10 06:46:14]
[ 0x5ADC0000 ] C:\WINDOWS\system32\uxtheme.dll [6.0.2900.2180,2004-08-04 15:52:01]
[ 0x5D170000 ] C:\WINDOWS\system32\COMCTL32.dll [5.82.2900.2982,2006-08-25 23:49:43]
[ 0x5EFE0000 ] C:\WINDOWS\system32\OLEPRO32.DLL [5.1.2600.2180,2004-08-17 07:39:26]
[ 0x5FDD0000 ] C:\WINDOWS\system32\NETAPI32.dll [5.1.2600.2976,2006-08-17 20:29:48]
[ 0x60090000 ] D:\Program Files\Tencent\QQ\BasicCtrlDll.dll [7.0.101.80,2007-02-02 15:49:47]
[ 0x600F0000 ] D:\Program Files\Tencent\QQ\CameraDll.dll [1.0.0.1,2006-08-19 15:38:47]
[ 0x601A0000 ] D:\Program Files\Tencent\QQ\CQQApplication.dll [,2007-02-02 17:26:49]
[ 0x60310000 ] D:\Program Files\Tencent\QQ\FlashAvatarDll.dll [1.4.0.1,2005-05-26 13:00:02]
[ 0x60350000 ] D:\Program Files\Tencent\QQ\gdiplus.dll [5.1.3102.2180,2004-08-04 15:50:55]
[ 0x60640000 ] D:\Program Files\Tencent\QQ\GroupLive.dll [,2007-02-02 17:40:07]
[ 0x60680000 ] D:\Program Files\Tencent\QQ\HostingMgr.dll [1.0.0.1,2007-02-02 18:02:29]
[ 0x608B0000 ] D:\Program Files\Tencent\QQ\LoginCtrlRes.dll [1.0.0.1,2007-02-02 17:43:37]
[ 0x609E0000 ] D:\Program Files\Tencent\QQ\MailSummary.dll [1.0.0.1,2007-02-02 18:57:30]
[ 0x60A10000 ] D:\Program Files\Tencent\QQ\MFC42.DLL [6.0.8665.0,1999-12-11 01:17:01]
[ 0x60BB0000 ] D:\Program Files\Tencent\QQ\NewSkin.dll [1.0.0.1,2007-02-02 16:54:56]
[ 0x60FD0000 ] C:\WINDOWS\system32\hnetcfg.dll [5.1.2600.2180,2004-08-17 07:37:44]
[ 0x61100000 ] D:\Program Files\Tencent\QQ\QQAllInOne.dll [,2007-02-02 18:54:07]
[ 0x612E0000 ] D:\Program Files\Tencent\QQ\QQAPI.dll [1.0.0.1,2007-02-02 17:54:09]
[ 0x61320000 ] D:\Program Files\Tencent\QQ\QQAvatar.dll [,2007-02-02 17:28:43]
[ 0x61360000 ] D:\Program Files\Tencent\QQ\QQBaseClassInDll.dll [1.0.0.1,2007-02-02 17:13:47]
[ 0x615A0000 ] D:\Program Files\Tencent\QQ\QQConfigPlugin.dll [1.0.0.1,2007-02-02 17:54:30]
[ 0x61640000 ] D:\Program Files\Tencent\QQ\QQGroupMng.dll [1.0.0.1,2007-02-02 17:43:17]
[ 0x616B0000 ] D:\Program Files\Tencent\QQ\QQHelperDll.dll [1.0.0.1,2007-02-02 17:00:45]
[ 0x61750000 ] D:\Program Files\Tencent\QQ\QQKnowledgeSearch.dll [1.0.0.1,2007-02-02 17:16:08]
[ 0x61780000 ] D:\Program Files\Tencent\QQ\QQMainFrame.dll [,2007-02-02 18:10:55]
[ 0x61950000 ] D:\Program Files\Tencent\QQ\QQPlugin.dll [,2007-02-02 18:19:40]
[ 0x61BE0000 ] C:\WINDOWS\system32\MFC42LOC.DLL [6.0.8665.0,2001-09-01 07:01:06]
[ 0x61EF0000 ] D:\Program Files\Tencent\QQ\QQSpace.dll [1.0.0.1,2007-02-02 18:04:57]
[ 0x62020000 ] D:\Program Files\Tencent\QQ\QRingMng.dll [,2007-02-02 17:38:34]
[ 0x62040000 ] D:\Program Files\Tencent\QQ\RICHED20.dll [5.31.23.1218,2003-03-26 11:45:31]
[ 0x620B0000 ] D:\Program Files\Tencent\QQ\RICHED32.DLL [5.0.2134.1,1999-12-11 01:14:55]
[ 0x620D0000 ] D:\Program Files\Tencent\QQ\SCCore.dll [2.0.0.1,2006-08-07 11:12:33]
[ 0x621F0000 ] d:\Program Files\Tencent\QQ\TIMProxy.dll [0.3.2.4,2005-08-18 15:39:48]
[ 0x62220000 ] D:\Program Files\Tencent\QQ\UserDefinedHead.dll [1.0.0.1,2007-02-02 18:03:19]
[ 0x62240000 ] D:\Program Files\Tencent\QQ\vbscript.dll [5.6.0.7426,2002-02-27 06:58:03]
[ 0x62C20000 ] C:\WINDOWS\system32\LPK.DLL [5.1.2600.2180,2004-08-17 07:37:58]
[ 0x68D60000 ] C:\WINDOWS\system32\DBGHELP.dll [5.1.2600.2180,2004-08-17 07:37:37]
[ 0x6E850000 ] C:\WINDOWS\system32\iertutil.dll [7.0.6000.16414,2007-01-09 11:02:40]
[ 0x70E20000 ] C:\WINDOWS\system32\asycfilt.dll [5.1.2600.2180,2004-08-17 07:38:10]
[ 0x719C0000 ] C:\WINDOWS\system32\mswsock.dll [5.1.2600.2180,2004-08-17 07:40:52]
[ 0x71A00000 ] C:\WINDOWS\System32\wshtcpip.dll [5.1.2600.2180,2004-08-17 07:39:46]
[ 0x71A10000 ] C:\WINDOWS\system32\WS2HELP.dll [5.1.2600.2180,2004-08-17 07:39:36]
[ 0x71A20000 ] C:\WINDOWS\system32\WS2_32.dll [5.1.2600.2180,2004-08-17 07:39:35]
[ 0x71A40000 ] C:\WINDOWS\system32\WSOCK32.dll [5.1.2600.2180,2004-08-17 07:39:48]
[ 0x72210000 ] C:\WINDOWS\system32\DINPUT.dll [5.3.2600.2180,2004-08-17 07:37:58]
[ 0x72C80000 ] C:\WINDOWS\system32\msacm32.drv [5.1.2600.0,2001-09-01 06:59:06]
[ 0x72C90000 ] C:\WINDOWS\system32\wdmaud.drv [5.1.2600.2180,2004-08-17 07:38:47]
[ 0x73620000 ] C:\WINDOWS\system32\msdmo.dll [6.5.2600.2180,2004-08-17 07:39:25]
[ 0x73640000 ] C:\WINDOWS\system32\msctfime.ime [5.1.2600.2180,2004-08-17 07:39:03]
[ 0x73AF0000 ] C:\WINDOWS\system32\AVICAP32.dll [5.1.2600.0,2001-09-01 06:58:59]
[ 0x73B40000 ] C:\WINDOWS\system32\MSVFW32.dll [5.1.2600.2180,2004-08-17 07:40:47]
[ 0x73FA0000 ] C:\WINDOWS\system32\USP10.dll [1.420.2600.2180,2004-08-17 07:38:33]
[ 0x74680000 ] C:\WINDOWS\system32\MSCTF.dll [5.1.2600.2180,2004-08-17 07:39:02]
[ 0x74CF0000 ] C:\WINDOWS\system32\mlang.dll [6.0.2900.2530,2004-10-16 04:54:41]
[ 0x759D0000 ] C:\WINDOWS\system32\USERENV.dll [5.1.2600.2180,2004-08-17 07:38:32]
[ 0x75AF0000 ] C:\WINDOWS\system32\devenum.dll [6.5.2600.2180,2004-08-17 07:37:49]
[ 0x75E00000 ] C:\WINDOWS\system32\SXS.DLL [5.1.2600.3019,2006-10-20 09:37:48]
[ 0x75FF0000 ] C:\WINDOWS\system32\MSVCP60.dll [6.2.3104.0,2004-08-17 07:40:45]
[ 0x76060000 ] C:\WINDOWS\system32\setupapi.dll [5.1.2600.2180,2004-08-17 07:38:20]
[ 0x762F0000 ] C:\WINDOWS\system32\MSIMG32.dll [5.1.2600.2180,2004-08-17 07:40:03]
[ 0x76300000 ] C:\WINDOWS\system32\IMM32.DLL [5.1.2600.2180,2004-08-17 07:38:09]
[ 0x76320000 ] C:\WINDOWS\system32\comdlg32.dll [6.0.2900.2180,2004-08-17 07:38:03]
[ 0x765E0000 ] C:\WINDOWS\system32\CRYPT32.dll [5.131.2600.2180,2004-08-17 07:37:27]
[ 0x767C0000 ] C:\WINDOWS\system32\schannel.dll [5.1.2600.2180,2004-08-17 07:38:25]
[ 0x76990000 ] C:\WINDOWS\system32\ole32.dll [5.1.2600.2726,2005-07-26 12:39:49]
[ 0x76B10000 ] C:\WINDOWS\system32\WINMM.dll [5.1.2600.2180,2004-08-17 07:39:06]
[ 0x76C00000 ] C:\WINDOWS\system32\WINTRUST.dll [5.131.2600.2180,2004-08-17 07:38:37]
[ 0x76C60000 ] C:\WINDOWS\system32\IMAGEHLP.dll [5.1.2600.2180,2004-08-17 07:37:54]
[ 0x76D30000 ] C:\WINDOWS\system32\iphlpapi.dll [5.1.2600.2912,2006-05-19 21:14:08]
[ 0x76DB0000 ] C:\WINDOWS\system32\MSASN1.dll [5.1.2600.2180,2004-08-17 07:38:55]
[ 0x76E50000 ] C:\WINDOWS\system32\rtutils.dll [5.1.2600.2180,2004-08-17 07:38:23]
[ 0x76E60000 ] C:\WINDOWS\system32\rasman.dll [5.1.2600.2180,2004-08-17 07:38:16]
[ 0x76E80000 ] C:\WINDOWS\system32\TAPI32.dll [5.1.2600.2180,2004-08-17 07:38:27]
[ 0x76EB0000 ] C:\WINDOWS\system32\RASAPI32.dll [5.1.2600.2180,2004-08-17 07:38:12]
[ 0x76EF0000 ] C:\WINDOWS\system32\DNSAPI.dll [5.1.2600.2938,2006-06-27 01:41:39]
[ 0x76F30000 ] C:\WINDOWS\system32\WLDAP32.dll [5.1.2600.2180,2004-08-17 07:38:40]
[ 0x76F80000 ] C:\WINDOWS\System32\winrnr.dll [5.1.2600.2180,2004-08-17 07:38:30]
[ 0x76F90000 ] C:\WINDOWS\system32\rasadhlp.dll [5.1.2600.2938,2006-06-27 01:41:39]
[ 0x76FA0000 ] C:\WINDOWS\system32\CLBCATQ.DLL [2001.12.4414.308,2005-07-26 12:39:45]
[ 0x77020000 ] C:\WINDOWS\system32\COMRes.dll [2001.12.4414.258,2004-08-17 07:38:07]
[ 0x770F0000 ] C:\WINDOWS\system32\OLEAUT32.dll [5.1.2600.2180,2004-08-17 07:39:22]
[ 0x771B0000 ] C:\WINDOWS\system32\WININET.dll [7.0.6000.16414,2007-01-13 01:27:40]
[ 0x77BA0000 ] C:\WINDOWS\system32\midimap.dll [5.1.2600.2180,2004-08-17 07:37:57]
[ 0x77BB0000 ] C:\WINDOWS\system32\MSACM32.dll [5.1.2600.2180,2004-08-17 07:38:35]
[ 0x77BD0000 ] C:\WINDOWS\system32\VERSION.dll [5.1.2600.2180,2004-08-17 07:38:31]
[ 0x77BE0000 ] C:\WINDOWS\system32\msvcrt.dll [7.0.2600.2180,2004-08-17 07:40:46]
[ 0x77C40000 ] C:\WINDOWS\system32\msv1_0.dll [5.1.2600.2180,2004-08-17 07:40:43]
[ 0x77D10000 ] C:\WINDOWS\system32\USER32.dll [5.1.2600.3099,2007-03-08 23:37:22]
[ 0x77DA0000 ] C:\WINDOWS\system32\ADVAPI32.dll [5.1.2600.2180,2004-08-17 07:37:49]
[ 0x77E50000 ] C:\WINDOWS\system32\RPCRT4.dll [5.1.2600.2180,2004-08-17 07:38:17]
[ 0x77EF0000 ] C:\WINDOWS\system32\GDI32.dll [5.1.2600.3099,2007-03-08 23:37:22]
[ 0x77F60000 ] C:\WINDOWS\system32\SHLWAPI.dll [6.0.2900.2995,2006-09-14 16:31:29]
[ 0x7C800000 ] C:\WINDOWS\system32\kernel32.dll [5.1.2600.2945,2006-07-05 18:55:58]
[ 0x7C920000 ] C:\WINDOWS\system32\ntdll.dll [5.1.2600.2180,2004-08-17 07:38:36]
[ 0x7D590000 ] C:\WINDOWS\system32\SHELL32.dll [6.0.2900.3051,2006-12-20 05:49:32]
___________________________________
gototop
 

这个是在诊断模式登陆后的错误报告
目标程序发生[可持续]异常,详细信息:[异常类型] EXCEPTION_ACCESS_VIOLATION/
[异常地址] 0x77BFB9B5/
[出错原因]:对地址[0xE2D8600C]进行写操作/操作系统:Microsoft Windows XP Service Pack 2 [Build 5.1.2600]

Registers:
EAX=03455AA0 EBX=00391EB4 ECX=E2D86008 EDX=00677568
ESI=0000003F EDI=00000000 EBP=0012F754 ESP=0012F734
EIP=77BFB9B5
Bytes at cs:Eip:
89 79 04 8B 4A 04 8B 7A 08 89 79 08 0F 84 8D 00 00 00 8B 4D F4 8D 0C F1 8B 79 04 89 4A 08 89 7A

Call stack:
0x77BE0000[1B9B5] msvcrt.dll:    - 0x77BFB9B5(00391EB4,00000000,FFFFFFFF,77BFC407)
0x77BE0000[1C320] msvcrt.dll:    - 0x77BFC320(00000080,0012F7A8,77BFC42E,00000080)
0x77BE0000[1C3E7] msvcrt.dll:    - 0x77BFC3E7(00000080,00000000,00000080,60A13844)
0x77BE0000[1C42E] msvcrt.dll:    - 0x77BFC42E(00000080,00000000,0325E2B0,0012F7F4)
0X60A10000[3844] MFC42.DLL:    - 0x60A13844(00000080,00000080,00000020,00000080)
0X60090000[E89F] BasicCtrlDll.dll:    - 0x6009E89F(035474A0,00000004,03830D7E,0012F828)
0X60090000[E193] BasicCtrlDll.dll:    - 0x6009E193(0325E2D0,035474A0,03830D7E,032634D4)
0X00400000[88DB2] QQ.exe:    - 0x00488DB2(0325E2D0,035474A0,03830D7E,032634D8)
0X00400000[889AE] QQ.exe:    - 0x004889AE(0325E2D0,035474A0,032634D4,032634D8)
0X00400000[88853] QQ.exe:    - 0x00488853(032634DC,03263470,00000000,00486CBD)
0X00400000[94941] QQ.exe:    - 0x00494941(032521E0,0012F970,0349BDA0,6009355F)
0X00400000[86CBD] QQ.exe:    - 0x00486CBD(03263470,0326095C,0000033D,0012F934)
0X00400000[43E64] QQ.exe:    - 0x00443E64(0012F970,0012FA83,0322E6B0,0349C270)
0X00400000[44872] QQ.exe:    - 0x00444872(00000350,0326224C,0012FA83,0322E6B0)
0X00400000[44F6C] QQ.exe:    - 0x00444F6C(00000350,0326224C,0012FA83,0322E6B0)
0X00400000[4777E] QQ.exe:    - 0x0044777E(00000350,0326224C,0012FA83,0322E6B0)
0X00400000[476F0] QQ.exe:    - 0x004476F0(00000350,0326224C,0012FA83,0322E6B0)
0X00400000[47BFD] QQ.exe:    - 0x00447BFD(0349C2FC,00000350,0326224C,0012FA83)
0X00400000[3E2CA] QQ.exe:    - 0x0043E2CA(00000000,00000350,0326224C,0322E5A4)
0X00400000[3E163] QQ.exe:    - 0x0043E163(0043DF3B,0012FB20,005033A0,FFFFFFFF)
0X00400000[3E8F3] QQ.exe:    - 0x0043E8F3(0012FB20,005033A0,FFFFFFFF,0012FAE8)
0X00400000[3DF3B] QQ.exe:    - 0x0043DF3B(0326224C,00000352,0326292C,0012FB2C)
0X00400000[3E92E] QQ.exe:    - 0x0043E92E(00000000,00000352,03262C9C,0322E5DC)
0X00400000[416F6] QQ.exe:    - 0x004416F6(00000000,00000352,03262C9C,0012FB6C)
0X00400000[4166E] QQ.exe:    - 0x0044166E(00000000,00000352,03262C9C,0322FF10)
0X00400000[418BD] QQ.exe:    - 0x004418BD(0322E5DC,00000000,00000352,03262C9C)
0X00400000[5A39D] QQ.exe:    - 0x0045A39D(0012FBE4,00506924,FFFFFFFF,0012FBF0)
0X00400000[5A340] QQ.exe:    - 0x0045A340(00000000,00000352,03262C9C,03237B8C)
0X00400000[5A7A5] QQ.exe:    - 0x0045A7A5(00000000,0012FC38,0045AFD3,00000000)
0X00400000[C8DA8] QQ.exe:    - 0x004C8DA8(00000000,00000000,03237B30,00000000)
0X00400000[5AFD3] QQ.exe:    - 0x0045AFD3(00000000,03206500,0012FC08,0012FCF8)
0X71A20000[453B] WS2_32.dll:    - 0x71A2453B(00000000,00000000,03237B30,0012FC64)
0X00400000[5AF53] QQ.exe:    - 0x0045AF53(00000000,0015A748,03266380,0015A7B0)
0X60A10000[19F9D] MFC42.DLL:    - 0x60A29F9D(000005E4,00000352,00000001,60A29E71)
0X60A10000[19EF6] MFC42.DLL:    - 0x60A29EF6(60A11ED5,000005E4,00000001,00B69860)
0X60A10000[19E88] MFC42.DLL:    - 0x60A29E88(000005E4,00000001,00B69860,00B69860)
0X60A10000[1ED5] MFC42.DLL:    - 0x60A11ED5(024104F9,00000000,00000001,0012FD74)
0X01730000[1C6B] ieprot.dll:    - 0x01731C6B(00000000,00000001,0012FD74,00030001)
0X77D10000[218E3] USER32.dll:    - 0x77D318E3(00000373,000005E4,60AAC8A8,0012FD20)
0X60A10000[1CEA] MFC42.DLL:    - 0x60A11CEA(00000373,000005E4,00000001,0012FE34)
0X60A10000[1C73] MFC42.DLL:    - 0x60A11C73(00000009,0012FE34,60A11B81,00154820)
0X60A10000[1018] MFC42.DLL:    - 0x60A11018(00000000,000C04B2,00000373,000005E4)
0X60A10000[1BFB] MFC42.DLL:    - 0x60A11BFB(000C04B2,00000373,000005E4,00000001)
0X60A10000[1BBA] MFC42.DLL:    - 0x60A11BBA(000C04B2,00000373,000005E4,00000001)
0X77D10000[8734] USER32.dll:    - 0x77D18734(60A11B81,000C04B2,00000373,000005E4)
0X77D10000[8816] USER32.dll:    - 0x77D18816(00000000,60A11B81,000C04B2,00000373)
0X77D10000[89CD] USER32.dll:    - 0x77D189CD(0057B64C,00000001,0057B64C,60A111CE)
0X77D10000[96C7] USER32.dll:    - 0x77D196C7(0057B64C,00000000,0057B618,60A191A4)
0X60A10000[11CE] MFC42.DLL:    - 0x60A111CE(0057B618,0057B618,0012FFC0,FFFFFFFF)
0X60A10000[91A4] MFC42.DLL:    - 0x60A191A4(0057B618,60A1B4FE,7C92EE18,00151EE3)
0X60A10000[9154] MFC42.DLL:    - 0x60A19154(7C92EE18,00151EE3,00000000,004FCF7B)
gototop
 

忘说了
从装了QQ还是不行
系统是不久前从装的应该没有什么病毒.
我想是不是我把不该删除浏览器加载项里有关QQ的东西给删掉了.
在或者是注册表里有关QQ的东西错了
gototop
 

我删除了
还是不可以

修改了
是登陆后出现掉线的情况
基本上登陆后10几秒就自动吊线了
gototop
 

还没有呢
正在等好心的高手帮忙的说
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT